ipfw dynamic rules

Luigi Rizzo rizzo at iet.unipi.it
Mon Mar 24 00:25:00 UTC 2014


On Mon, Mar 24, 2014 at 1:14 AM, Michael Sierchio <kudzu at tenebras.com>wrote:

> On Sun, Mar 23, 2014 at 4:31 PM, Julian Elischer <julian at freebsd.org>
> wrote:
>
> > but disabled rules still have a cost I believe as hey still need to be
> > traversed,
> > unless someone has been very smart..
>
> This I did not know. I don't have many, but it's a small
> disappointment, if true.
>

skipto is at most log(n) in the number of rules.

cheers
luigi



More information about the freebsd-ipfw mailing list